Index: lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java =================================================================== diff -u -r0a6765ac7eb73c6b99c343a021877c48236241b8 -r2cad2462df185fce685da61762fb06d98ebee415 --- lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java (.../PeerreviewServiceImpl.java) (revision 0a6765ac7eb73c6b99c343a021877c48236241b8) +++ lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java (.../PeerreviewServiceImpl.java) (revision 2cad2462df185fce685da61762fb06d98ebee415) @@ -496,15 +496,18 @@ private void generateRatingEntryForEmail(StringBuilder notificationMessage, RatingCriteria criteria, StyledCriteriaRatingDTO dto) { + String escapedTitle = StringEscapeUtils.escapeHtml(dto.getRatingCriteria().getTitle()); if (dto.getRatingDtos().size() >= 1) { if (criteria.isCommentRating()) { StringBuilder comments = new StringBuilder(); for (StyledRatingDTO ratingDto : dto.getRatingDtos()) { - if (ratingDto.getComment() != null) - comments.append("